The login page for the fido website should not "show password" for one populated from a secure keychain. What if someone were to have a look at the prefill and decide to try it on my other accounts? That would be a password breach and security leak ...